Valideur Logo
Back to Frameworks Library
Healthcare

HIPAA

The Health Insurance Portability and Accountability Act of 1996 (HIPAA) sets the standard for sensitive patient data protection. Companies that deal with protected health information (PHI) must have physical, network, and process security measures in place.

75 Controls Configured

Framework Requirements & Categories

Detailed breakdown of the highly precise, accurate control domains defined by HIPAA.

Permitted Uses and Disclosures

Circumstances where PHI can be used/disclosed without individual authorization.

Authorized Uses and Disclosures

Requirements for obtaining valid authorization.

Minimum Necessary Requirement

Limiting uses and disclosures to the minimum necessary.

Notice of Privacy Practices

Requirement to provide a notice of privacy practices to individuals.

Individual Rights

Rights to access, amend, and receive an accounting of disclosures of PHI.